*BSD News Article 71642


Return to BSD News archive

Path: euryale.cc.adfa.oz.au!newshost.anu.edu.au!harbinger.cc.monash.edu.au!news.rmit.EDU.AU!news.unimelb.EDU.AU!munnari.OZ.AU!metro!metro!asstdc.scgt.oz.au!nsw.news.telstra.net!act.news.telstra.net!psgrain!usenet.eel.ufl.edu!news-res.gsl.net!news.gsl.net!nntp.coast.net!news.kei.com!news.mathworks.com!fu-berlin.de!news.belwue.de!news.uni-stuttgart.de!uniol!uni-erlangen.de!news.th-darmstadt.de!hrz-ws11.hrz.uni-kassel.de!newsserver.rrzn.uni-hannover.de!tubsibr!malibu.ts.rz.tu-bs.de!not-for-mail
From: mb@malibu.ts.rz.tu-bs.de (Martin Butkus)
Newsgroups: comp.unix.bsd.freebsd.misc
Subject: Re: disabling user executables?
Date: 19 Jun 1996 09:24:53 +0200
Organization: TU Braunschweig, Germany
Lines: 12
Distribution: world
Message-ID: <4q8a05$48v@malibu.ts.rz.tu-bs.de>
References: <4q7gv6$1d2@itchy.serv.net>
Reply-To: M.Butkus@tu-bs.de
NNTP-Posting-Host: rzrtr1.rz.tu-bs.de
X-Newsreader: TIN [version 1.2 PL2]
Originator: y0001415@ws.rz.tu-bs.de

Sean T. Lamont (zeno@serv.net) wrote:
: Has someone made a kernel patch which disables executing programs
: that aren't root-owned?

None that I know of, but what about putting /home, /tmp and /var/tmp
(and any other world-writable directories) onto a seperate partition 
which will be mounted -o noexec ?

--
Martin Butkus					>>> Live long and prosper. <<<
Phone/Fax: +49.5331.298710
Am Stadtwege 10, 38304 Wolfenbuettel, Germany	M.Butkus@tu-bs.de